Guest

Preview Tool

Cisco Bug: CSCuq53385 - UCSM Cannot Create Certificate Request for default KeyRing

Last Modified

Feb 22, 2018

Products (1)

  • Cisco Unified Computing System

Known Affected Releases

2.1(3d)A

Description (partial)

Symptom:
UCSM returns following error while re-generating the default Key Ring
Cannot Create Certificate Request for default KeyRing

We can observe following error messages in svc_sam_dme log file ( part of UCSM techsupport log bundle 

=========
[INFO][0xac56abb0][Aug  6 05:20:47.182][exception_handling:rep] FATAL[5|702]: ../feature/nuova/sam/sam/src/app/sam/dme/imp/pki/MuPkiEpEndExplicitUpdateCbImp.cc(279):validateKeyRingNodes pkiKeyRing[sys/pki-ext/keyring-default] : Cannot Create Certificate Request for default KeyRing

[INFO][0xac56abb0][Aug  6 05:20:47.183][exception_handling:rep] ERROR[3|702] ../feature/nuova/sam/sam/src/lib/framework/core/proc/Doer.cc(874):exceptionCB: exception encountered during processing: "Cannot Create Certificate Request for default KeyRing" [702] Cannot Create Certificate Request for default KeyRing
=========

Conditions:
While attempting to re-generate expired self-signed UCSM certificate.
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.